I don’t work for an org, I work for money.
Why should I self-sabotage my options, they might have a shit hiring process and still pay well.
I don’t work for an org, I work for money.
Why should I self-sabotage my options, they might have a shit hiring process and still pay well.
yeah but they won’t fix it. They’ll make a note that this candidate is difficult to work with and look for another.


The website looks AI generated to me as well. The style and especially the purple really give it that token AI look.
(Just pointing it out, not in a negative way, not implying anything)


ew why are you so toxic and arrogant?
I wanted to upvote you, cause I am not psrt of the anti-ai mob, but then I read you last sentence and the rest of this thread and holy fuck are you unlikable and unbearable.


OP asked:
How can you grant access to an account to write remotely, but also protect the data from this account?
So I was thinking that the account should not be able to delete the filesystem in an unrecoverable way. Like overriding the current fs with random data or an encrypted fs and filling it etc.
Like I said on a Hetzner storage box, multiple users get access to the same system, but each one only has file editing commands, not fs editing and they can only access their assigned directory. So if the system does scheduled snapshots (outside of that user’s scope of access) there is no way for a user to delete the files beyond recoverability. (no matter if their own files or other users files).
The user can still delete their own data. But because the fs is cow with snapshots (like btrfs) and they can not touch that, the data can be recovered easily.


Are they? I thought they only write/modify/delete data to the fs, not change the fs itself.


I think you could do it somewhat like hetzner does for their storage boxes. You get an account that has read and write access to a directory and nothing outside. The accound can only run a limited set of commands, like ls, cat, nano, rsync etc. but has no access to commands that modify the filesystem.
Then you can use a copy on write fs like btrfs and make scheduled staggered snapshots.
I usually do 1x per year, 1x per month of current year, 4 per week of current montg, 7 per day in current week.
I have no clue what they use to limit the user accounts like that btw. but maybe that gives you a new jump off point for further research.


You’ve posted this AD to your SaaS offer multiple times in a couple of days now. Please stop the spam.
Rustdesk is what I use for tech support for my family. By default it uses the rustdesk official server for the handshake and holepunching or whatever, but you can also selfhost your own if you want to.
But I want to migrate to some kind of hardware web kvm like nanokvm, cause sometimes their pc doesn’t boot and walking them through bios settings over a shaky videocall is a nightmare.


portmaster can turn off internet for a specific app, but even better it can block specific domains
actually just putting the website domain (with local ip or something) into hosts file will be enough
I have an alcatel lucent switch from the 90s
It’s been running 24/7 for 25 years in some companys rack and now it runs for 10 in mine.
Got it for 30$ on ebay (and a second one for 20 as a backup)
https://github.com/LinSoftWin/Photoshop-CC2022-Linux
works perfectly for me


I also use grayjay, but mainly for the available backends for multipe sources.
Besides yt I have my twitch subs there and the occasional bilibili and niconico channel.
No more hopping websites to watch the stuff I wanna watch. It’s now all in one app.
Thanks for your effort!
Pros: it’s Linux :D
Cons: it’s Linux ;(


I’ve recently read this super interesting and in depth blogpost about this topic:
Gaben is great!
But I was thinking of the founder of Blue Systems https://en.wikipedia.org/wiki/Blue_Systems
I agree, but I’m still glad some rich people are spending tons of money to make some free and very useful apps for me.
Ideally they should be doing it like the millionaire that partially funds KDE though.


I’m using soquartz compute modules on soquartz blades, because of the nvme slot and PoE. Just one cable for each is so nice in a tiny rack. They are running dietpi and docker swarm with dokploy.
I generally recommend the pine64 stuff, but shipping and tax might be high depending on where you live :/
in kde plasma this is possible by right clicking the start menu and selecting edit applications.